theY4Kman / parsuricata
Parse Suricata rules
☆13Updated last year
Alternatives and similar repositories for parsuricata:
Users that are interested in parsuricata are comparing it to the libraries listed below
- Pure python parser for Snort/Suricata rules.☆29Updated 11 months ago
- Meer is a "spooler" for Suricata / Sagan.☆29Updated last year
- Collection of various open-source an commercial rulesets for NIDS (especially for Suricata and Snort)☆23Updated last year
- Yara powered NIDS with high speed packet capture powered by PF_RING☆68Updated 9 months ago
- Suricata rule and intel index☆30Updated 2 months ago
- Configuring the Suricata IDS to detect DoS attacks by adding custom rule file.☆39Updated 4 years ago
- automatic enumeration and maintenance of Suricata monitoring interfaces☆11Updated 5 years ago
- Go implementation of the Community ID flow hashing standard☆20Updated last month
- Bro analyzer that detects Google's QUIC protocol☆10Updated 3 years ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆51Updated 7 months ago
- NIST Information Security Continuous Monitoring (ISCM) and configuration baseline data collector☆16Updated last year
- Tracking APT IOCs☆25Updated 4 years ago
- pyJARM is a library for doing JARM fingerprinting using python☆51Updated last month
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆67Updated last month
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 8 years ago
- Zeek scripts that provide an alternative log file logging TLS/SSL traffic☆10Updated 3 years ago
- Command-line tool to format and syntax highlight Suricata rules☆13Updated 5 years ago
- Application and service identification rules for Suricata☆18Updated 2 years ago
- ☆33Updated 3 years ago
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆32Updated 5 months ago
- Useful resources for Zeek(https://zeek.org/) (Bro(http://bro.org/))☆32Updated 4 years ago
- Plugin providing AF_XDP support for Bro.☆14Updated 3 years ago
- Application and service identification rules for Suricata☆29Updated 2 years ago
- A proof of concept implementation of the Siemens S7 protocol analyser for the Bro IDS.☆16Updated 7 years ago
- Simple Python bindings for the Hyperscan project.☆20Updated 8 years ago
- Plugin providing native AF_Packet support for Zeek.☆34Updated 10 months ago
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆87Updated 9 months ago
- Golang based web service to scan files with yara rules☆27Updated 7 years ago
- Threat Mapping Catalogue☆17Updated 3 years ago
- Generate JSON force-directed/ node graph data from MITRE's ATTACK framework and visualize it interactively☆22Updated 3 years ago